← Back to search Server uses filesystem capabilities via: fs, fs sync ops, open(), path Server uses shell capabilities via: child_process, execSync(), spawn() Server uses env_vars capabilities via: process.env
io.github.Rumblingb/agentpay-sentinel-mcp
Security guardrails for AI agent payments
B
75.5 / 100
Versions
1.0.0latestfirst seen Jun 5, 2026
Tools 5
sentinel_audit_transaction annotations: none low
nonce string amount string category string token_id string allowlist string budget_cap string expires_at string token_hash string merchant_id string current_spend string approved_amount string calls_this_minute string blocked_categories string max_calls_per_minute string
sentinel_revoke_token annotations: none low
reason string token_id string
sentinel_clear_nonce annotations: none low
nonce string
sentinel_verify_chain annotations: none low
audit_hashes string expected_chain_root string
sentinel_threat_model annotations: none low
context string attack_vector string
Permissions 3
filesystem low shell high env_vars low Scan Findings 29
low
Tool 'sentinel_audit_transaction' has no annotations
low
Tool 'sentinel_revoke_token' has no annotations
low
Tool 'sentinel_clear_nonce' has no annotations
low
Tool 'sentinel_verify_chain' has no annotations
low
Tool 'sentinel_threat_model' has no annotations
info
Sandbox failed to start for behavioral verification
medium
Vulnerable dependency: mcp@1.0.0 (GHSA-3qhf-m339-9g5v)
medium
Vulnerable dependency: mcp@1.0.0 (GHSA-9h52-p55h-vw2f)
medium
Vulnerable dependency: mcp@1.0.0 (GHSA-j975-95f5-7wqh)
medium
Vulnerable dependency: mcp@1.0.0 (GHSA-jpw9-pfvf-9f58)
medium
Vulnerable dependency: mcp@1.0.0 (GHSA-vj7q-gjh5-988w)
medium
Vulnerable dependency: mcp@1.0.0 (PYSEC-2026-1616)
medium
Vulnerable dependency: mcp@1.0.0 (PYSEC-2026-1617)
medium
Vulnerable dependency: mcp@1.0.0 (PYSEC-2026-1618)
medium
Vulnerable dependency: mcp@1.0.0 (PYSEC-2026-3482)
medium
Vulnerable dependency: mcp@1.0.0 (PYSEC-2026-3483)
info
package.json metadata
info
Tool: sentinel_audit_transaction
info
Tool: sentinel_revoke_token
info
Tool: sentinel_clear_nonce
info
Tool: sentinel_verify_chain
info
Tool: sentinel_threat_model
info
Transport: stdio
info
Sandbox failed to start for output poisoning scan
low
Permission: filesystem access detected
high
Permission: shell access detected
low
Permission: env_vars access detected
info
SBOM generated: 1 components
medium
No build provenance detected (SLSA L0)